HIGH
CVE-2021-40450
CVSS
7.8
KEV
Description
Win32k Elevation of Privilege Vulnerability
Summary dbcve.org
CVE-2021-40450 is an elevation of privilege vulnerability in the Windows win32k.sys kernel-mode driver. The vulnerability allows a low-privileged attacker to gain higher system privileges by exploiting improper validation in win32k system calls.
Mitigation
Apply the Microsoft security update for CVE-2021-40450 via Windows Update or enterprise patch management systems. Prioritize affected Windows workstations and servers as patches become available.
EPSS Score
1.58%
Probability of exploitation in next 30 days
74.5th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.